Information Security Officer Jobs
Information Security Officer jobs are open across financial services, healthcare, government, and technology, at every level from analyst to CISO, with specializations in risk management, compliance, and incident response. Find a role that fits from the openings below and apply directly.
Find JobsLooking for remote work? View remote information security officer jobs →Overview
Showing 5 of 407+ Information Security Officer jobs











Chameleon Integrated Services has expertise in operations management, quality systems, data operations and cybersecurity. We secure some of the most sensitive data for the Department of Defense and for other U. S. federal government agencies. We are known for the great care we take with clients and employees, and we believe in promoting from within.
We offer a Full Benefits package including:
- Competitive Employee Health Insurance options including dental
- 100% company paid vision plan
- 401K plan with generous company match and no vesting period
- 100% company paid Life insurance
- 100% company paid long and short-term disability insurance
- Training allowance
- PTO and more
INFORMATION SYSTEM SECURITY OFFICER
Position mission: Maintain the security posture, RMF records, and continuous-monitoring evidence for assigned systems within the DAF FM AO boundary.
Duties:
- Maintain assigned-system RMF and authorization artifacts.
- Update SSPs, control implementation statements, POA&Ms, risk records, and supporting evidence.
- Maintain assigned-system information in eMASS and ITIPS.
- Monitor control implementation and authorization status.
- Track vulnerabilities, remediation actions, due dates, closure evidence, and residual risks.
- Coordinate with system administrators, database administrators, software engineers, program personnel, and system owners.
- Support security-control assessments and respond to findings.
- Prepare system-level inputs for AO decision staff packages.
- Support continuous monitoring and reauthorization activities.
- Analyze proposed changes for security implications and coordinate required artifact updates.
- Participate in briefings and governance sessions concerning assigned systems.
- Maintain current system boundary, inventory, points of contact, authorization, and expiration information.
MANDATORY SECURITY COMPLIANCE (DoD 8570 / DoD 8140)
To be eligible for technical review and corporate submittal to the Air Force Contracting Officer, candidates MUST meet the requirements of OPTION A or OPTION B below. Applications failing to demonstrate at least one pathway will be automatically archived.
-
OPTION A (8570):
Candidate must hold ONE active, verifiable commercial certification from the approved DoD 8570/8140 IAM Level II list below. Please include your certification number and expiration date directly on your resume draft:- CGRC – Certified in Governance, Risk and Compliance (formerly CAP)
- CASP+ CE – CompTIA Advanced Security Practitioner
- CISM – Certified Information Security Manager
- CISSP (or Associate) – Certified Information Systems Security Professional
- GSLC – GIAC Security Leadership Certification
- CCISO – Certified Chief Information Security Officer
-
OPTION B (8140):
Candidate must hold a relevant higher-education degree (Master’s or Bachelor’s degree in Cybersecurity, Information Assurance, Computer Science, or Information Technology) AND demonstrate clear, hands-on professional experience supporting Risk Management Framework (RMF) activities, updating control implementation records, or maintaining vulnerability tracking logs within structured environments.
- Personally maintained RMF packages for one or more systems.
- Hands-on eMASS and ITIPS use.
- SSP, POA&M, assessment-evidence, risk-record, and continuous-monitoring duties.
- Vulnerability and remediation coordination with technical teams.
- Support for ATO or reauthorization activities.
- Security-impact analysis for system or configuration changes.
- Interaction with system owners, program managers, assessors, and authorization personnel.
The candidate must demonstrate system-level security ownership and recurring coordination with technical personnel.
Anticipated start: September 28, 2026
Primary work location: Ellsworth AFB, South Dakota. Occasional work at Wright-Patterson AFB, Ohio.
Work schedule: An eight-hour shift scheduled between 6:00 a.m. and 6:00 p.m. Mountain Time, Monday through Friday. The team must collectively provide overlapping coverage during that window. COOP support may be required, but work will remain within a 40-hour workweek unless the Contracting Officer authorizes otherwise.
Project Length: Up to 4.5 years
“We are an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability or protected veteran status”
Texting Privacy Policy
- Message type: Informational; you will receive text messages regarding your application and potentially regarding interview scheduling.
- No mobile information will be shared with third parties/affiliates for marketing/promotional purposes.
- Message frequency will vary depending on the application process.Msg & data rates may apply.
- OPT out at any time by texting "Stop".
pkoqOadZTq
Information Security Officer Jobs by Experience Level
Top Cities Hiring Information Security Officers
Explore information security officer openings in the cities hiring most right now.
See All 407+ Information Security Officer Jobs
Find roles that match your experience and apply in just a few clicks.
Find JobsInformation Security Officer Job Market
Who's Hiring
- Raytheon14

- General Dynamics Information Technology12

- Lockheed Martin9

- Booz Allen Hamilton9

- Peraton8

Top Industries Hiring
- Technology & Software12
- Insurance4
- Banking & Financial Services4
- Healthcare & Medical Services4
- Consulting & Professional Services4
What Employers Look For
The qualifications that appear most often in information security officer jobs.
- CISSP, CISM, or equivalent security certification strongly preferred or required
- Proven experience building or leading an information security program
- Deep knowledge of risk management frameworks such as NIST CSF or ISO 27001
- Familiarity with regulatory compliance requirements including SOX, HIPAA, or PCI-DSS
- Experience conducting or overseeing security audits and vulnerability assessments
- Bachelor's degree in information security, computer science, or a related field
Tips for Your Information Security Officer Job Search
Align certifications to the posting
Many information security officer roles list CISSP, CISM, or CRISC as requirements, not preferences. Match the exact certification acronyms from the job description in your resume header and skills section so automated screening tools pick them up immediately.
Quantify risk reduction outcomes
Hiring managers in this role respond to concrete impact. Replace vague statements like 'managed security programs' with specifics about audit findings reduced, vulnerabilities remediated within a defined window, or compliance gaps closed before a regulatory deadline.
Apply early to roles that fit
Migrate Mate lists information security officer openings from across the United States in one place, so you can find roles that match and apply directly to each listing.
Target industries by your compliance background
Financial services roles prioritize SOX and PCI-DSS experience while healthcare roles weight HIPAA program ownership heavily. Tailor your resume's summary and experience bullets to the regulatory framework that dominates the industry you're targeting.
Prepare a governance artifact for interviews
Bring or be ready to discuss a policy, framework, or risk register you authored. Information security officer interviews often include a scenario where you walk through how you structured a program, not just what certifications you hold.
Negotiate scope before you negotiate salary
Clarify reporting structure, board access, and budget authority during the offer stage. An information security officer title without executive access or a dedicated budget limits your ability to deliver results and constrains future career advancement.
Information Security Officer Jobs: Frequently Asked Questions
Which companies are hiring the most information security officers?
The companies hiring the most information security officers right now include Raytheon, General Dynamics Information Technology, and Lockheed Martin, with the largest share of openings in Maryland, Virginia, and California, based on current listings on Migrate Mate as of August 2026. Demand is concentrated in financial services, federal contracting, and large healthcare systems.
How many information security officer jobs are remote?
About 39% of information security officer openings are fully remote or hybrid as of August 2026, though fully on-site roles remain common in government and regulated industries. Risk and compliance-focused sub-areas of the role tend to offer the most remote flexibility, while roles tied to physical infrastructure or classified environments typically require on-site presence.
How do you become an information security officer?
Start by building a foundation in IT or cybersecurity through hands-on roles such as security analyst, systems administrator, or network engineer. Earn a recognized certification like CISSP or CISM, then move into program ownership by leading audits, drafting security policies, or managing compliance initiatives. Progressing to an information security officer role typically requires demonstrated leadership over a security function, not just technical execution.
Can you get an information security officer job with little or no experience?
Direct information security officer roles generally require prior security program experience, but you can build toward them by starting in analyst, IT risk, or compliance roles that expose you to policy development and audit processes. Earning a foundational certification, contributing to a security assessment, or owning a discrete compliance workstream in a smaller organization can position you for an officer-level role faster than a traditional linear path.
What does the information security officer interview process look like?
Most information security officer hiring processes include an initial screening call, a technical or competency interview covering risk frameworks and past program decisions, and a final round with executive stakeholders such as the CFO or CTO. Candidates are often asked to present a past security initiative or respond to a scenario involving a breach, a compliance gap, or a board-level risk briefing.
Where can I find and apply to information security officer jobs?
You can find and apply to information security officer jobs on Migrate Mate, which lists current openings from across the United States. Find roles that match your experience and specialization, then apply directly to each listing without being redirected to third-party sites.
See All 407+ Information Security Officer Jobs
Find roles that match your experience and apply in just a few clicks.
Find Jobs